Information on the processing of personal data for B2C customers
Dear Customer,
Sifar Group Srl (Data Controller) hereby wishes to provide you with information on the processing of your personal data.
1. Data Controller
The Data Controller is Sifar Group Srl, represented by its legal representative pro tempore, with registered office in Milan, Piazza della Conciliazione no. 5.
2. Purposes (and legal basis for processing)
The personal data you provide us, as well as those obtained from your browsing on our sites (for example, identification data, contact details, site access logs) will be used for the purposes set out in this Privacy Policy. of:
- provide registration on the site and related services, for preliminary needs prior to the sale, to follow up on the sale, and to protect the resulting credit positions (execution of the contract between the parties and pre-contractual measures at the request of the interested parties);
- for operational, management, administrative, and accounting purposes, including the emailing of commercial invoices (in compliance with legal obligations, particularly tax-related);
- allow access to and navigation of the sites, monitor their operation, and ascertain any liability; in the event of unlawful conduct (legitimate interest of Sifar Group Srl);
- conduct customer checks (including creditworthiness checks) by collecting information from public and private registers and archives, which are also processed by third-party partners or suppliers (in performance of the contract or legal obligations and in any case based on the legitimate interest of the Data Controller in knowing its customers and preventing fraud or credit situations).
The provision of data for the contractual purposes referred to in points a) and b) is mandatory (without it, it is not possible to process the sales contract and provide the related services).
For the purposes referred to in point c), you will be able to object at any time, as provided in point 4 of this policy.
The legitimate interest referred to in point c) consists in ensuring the proper functioning and security of our websites, protecting our systems and networks against misuse, preventing fraud, and ensuring information security.
3. Cookies
We use our own and third-party cookies on our website to speed up navigation, recommend products, and display personalized content, including advertising, tailored to your interests. If you would like more information, please see our Privacy Policy.
4. Data communication - Data transfer abroad
The personal data collected may be communicated, within their specific jurisdiction, to public administrations for the performance of institutional functions, to banks, to entities specialized in the management of information systems and/or payment systems, to entities specialized in the IBAN check service, insurance companies and credit intermediaries, to entities that supply the goods and services sold by Sifar Group Srl, to other companies of the Esprinet Group, to entities carrying out transport or shipping activities, to law firms and consultancy firms, to entities responsible for accounting or auditing the financial statements of Group companies, and to public authorities for legal compliance.
Depending on the case, these entities will be classified as independent Data Controllers or Data Processors pursuant to art. 28 GDPR and, in the latter case, will receive formal authorization and instructions on data processing.
In any case, personal data will not be disclosed.
To the extent strictly necessary for the execution of the contractual relationship, your personal data may be disclosed to third parties, such as, for example, suppliers of products and/or services, located both within and outside the European Union. Any such disclosure
Transfers outside the EU comply with the conditions set out in Chapter V of European Regulation 2016/679.
5. General aspects
The processing of your personal data may consist, in addition to their collection, their recording, storage, modification, communication, and deletion in an automated or semi-automated manner, and their storage will take place in paper and/or electronic/computerized/optical form. All personal data processed by Sifar Group Srl is protected by adequate security measures, as required by current legislation and for the time strictly necessary to fulfill the purposes referred to in point 1 of this policy.
For the purposes For the purposes referred to in points a), b), and d), your data will be retained for the period required by law. For the purposes referred to in point c), the data will be retained until the contractual relationship ends.
As provided for by Article 13 of the GDPR (EU) 2016/679, we remind you that you have the right to request from Sifar Group Srl access to your personal data, rectification, erasure (where applicable), objection, or restriction of processing. You also have the right to withdraw your consent to the processing of data for which you have given consent, the right to request data portability, and the right to lodge a complaint with the Italian Data Protection Authority.
All the rights summarized above may be exercised by writing to: privacy@sifar.it.
We will respond promptly.
The Data Controller is Sifar Group Srl, represented by its legal representative pro tempore, with registered office in Milan, Piazza della Conciliazione no. 5. Sifar Group Srl can always be reached for clarifications at the email address: privacy@sifar.it.
6. Updates to the Privacy Policy
This Privacy Policy is published in the Data Controller's Customer Area in the User Profile section. Any updates to the document will be published in the same section, which we recommend you consult regularly.
Updated on April 15, 2025



